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Amendment dated June 14, 2004 
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This listing of claims will replace all prior versions, and listings, of claims in the application: 
Listing of Claims: 

1 . (Presently Amended): A method for controlling access, use and distribution of personal 
data of a user stored in a personal repository, the method comprising the steps of: 

a data processing device receiving input defining personal data comprising a master 
profile and on e or mor e a plurality of service profiles for storage in the- a digitally stored personal 
data repository, the master profile and on e or m o r e pluralitv of service profiles eerr-espe nding t o 
tjie providing information about only a single user; 

receiving user input identifying one of the plurality of service profiles stored in the 
personal data repository as corresponding to a second party; 

reaching an agreement, between the user and the second party, regarding release to the 
second party of the identified service profile; and 

providing the identified service profile from the personal data repository to the second 
party according to the agreement. 

2. (Previously Presented): The method of claim 1 , wherein the personal data 
comprises automatically collected information. 

3. (Original): The method of claim 1, wherein the step of reaching the agreement 
comprises choosing an agreement provided by an independent agreement provider, wherein the 
independent agreement provider receives compensation based on use of the provided agreement, 

4. (Previously Presented): The method of claim 1 , wherein the personal data 
comprises information entered by the user. 

5. (Previously Presented): The method of claim 1 , further comprising the step of 
storing the personal data on a device operated by the user. 
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6. (Previously Presented): The method of claim 1 , further comprising the step of 
storing the personal data on a trusted party device. 

7. (Previously Presented): The method of claim 1 , further comprising the step of 
storing the personal data in a distributed manner among a plurahty of trusted party devices. 

8. (Previously Presented): The method of claim 1, wherein the identified service 
profile comprises music preferences. 

9. (Previously Presented): The method of claim 1, wherein the second party comprises 
a financial institution, and wherein the identified service profile comprises financial informadon. 

10. (Previously Presented): The method of claim 9, wherein the identified service 
profile includes informafion regarding a date and a time that any of the information in the 
identified service profile was released to the second party and to whom the stored informafion 
was released. 

1 1 . (Previously Presented): The method of claim 9, wherein the identified service 
profile includes information pertaining to a description of the agreement between the user and 
the second party. 

1 2. (Original): The method of claim 1 , further comprising the step of acting, by a trusted 
party, as an agent of the user to negotiate use, by the second party, of any of the personal data of 
the user in return for compensadon to the user for the use of any of the personal data. 

13. (Previously Presented): The method of claim 2, further comprising the steps of 
automadcally recording a history of acdons by the user using a user device, as part of the 
personal data of the user. 
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1 4. (Previously Presented): The method of claim 13, further comprising receiving user 
input defining a type of actions to be automatically recorded. 

1 5. (Previously Presented): The method of claim 1 , further comprising the steps of: 
receiving, at a trusted party device connected to a computer network, a first request from 

a device operated by the user; 

forming a second request based on the first request, the second request being stripped of 
information that can associate the user with the second request; 

sending, fi-om the trusted party device, the second request over a computer network to a 
second party device; 

receiving, at the trusted party device, response information in response to the sending of 
the second request; 

forming a response based on the response information; and 
sending the response to the device operated by the user. 

16. (Canceled) 

17. (Canceled) 

1 8. (Presently Amended): A system for providing personal data of a single user with access 
rights being controlled by the user, the system comprising: 

a user device; 

a trusted party device, the user device being arranged to communicate with the trusted 
party device; 

at least one data storage device storing personal data of only the single user, said personal 
data comprising a master profile and on e or m o r e a plurality of service profiles; 

a rules enforcer included in the trusted party device to enforce rules by which the 
personal data of the user can be accessed by a second party device, the rules having been agreed 
to by the user and a second party associated with the second party device, wherein: 
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the at least one data storage device is associated with at least one of the user device and 
the trusted party device. 

19. (Previously Presented): The system of claim 1 8, further comprising a plurality of 
trusted party devices, each of the trusted party devices being configured to communicate with at 
least one other of the pluraHty of trusted party devices, and 

wherein the at least one storage device is included in at least some of the plurality of 
trusted party devices and the personal data of the user is distributed among the at least one 
storage device of the at least some of the plurality of trusted party devices. 

20. (Original): The system of claim 1 8, wherein the trusted party device further comprises 
an agreement facilitator to facilitate an agreement between the user and the trusted party. 

21 . (Original): The system of claim 1 8, wherein the user device further comprises an 
agreement facilitator to facilitate an agreement between the user and the trusted party. 

22. (Previously Presented): The system of claim 1 8, wherein the second party 
comprises a financial institution, and wherein the identified service profile comprises financial 
information. 

23. (Previously Presented): The system of claim 18, wherein the trusted party device 
further comprises a history recorder to automatically record a history of actions performed by the 
user device. 

24. (Previously Presented): The system of claim 23, wherein the history recorder 
includes an action selector by which the user, via the user device, can define the actions to be 
automatically recorded. 
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25. (Presently Amended): A system for providing personal data of a single user, the system 
comprising: 

a user device; 

a second party device, the user device being arranged to communicate with the second 
party device; 

a data storage, associated with the user device, storing personal data of only the single 
user, said personal data comprising a master profile and-ene-OFffler^ a plurality of service 
profiles; and 

a rules enforcer included in the user device to enforce rules by which the master profile 
and o n e o r m or e plurality of service profiles can be accessed by the second party device, the 
rules having been agreed to by the user and a second party associated with the second party 
device, the rules including what items of the personal data are releasable to the second party and 
how the items of the personal data can be used by the second party. 

26. (Previously Presented): The system of claim 25, wherein the second party 
comprises a financial institution, and wherein the identified service profile comprises financial 
information. 

27. (Previously Presented): The system of claim 25, wherein the user device further 
comprises a history recorder to automatically record a history of actions performed by the user 
device. 

28. (Previously Presented): The system of claim 27, wherein the history recorder 
includes an action selector to define the actions to be recorded. 

29. - 34. (Canceled) 

35. (Presendy Amended) A mobile device for providing personal data of a single user with 
access rights being controlled by the user, the mobile device comprising: 
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a data storage device storing at least some personal data of only the single user, said 
personal data comprising a master profile and on e or mor e a plurality of service profiles; 

an agreement facilitator module to facilitate an agreement between the user and the 
second party according to which the second party can access the personal data; and 

a rules enforcer module to enforce rules by which the personal data can be accessed by a 
second party device, according to the agreement. 

36.-44. (Canceled) 

45. (Previously Presented) A mobile device for providing personal data of a user with access 
rights being controlled by the user, the mobile device comprising: 

a rules enforcer to enforce the rules by which the personal data of the user can be 
accessed and used by a second party device, the rules having been agreed to by the user and a 
second party associated with the second party device; 

a data storage device having recorded therein at least some of the personal data of the 

user; 

an agreement facilitator to facilitate an agreement between the user and the second party; 

and 

a history recorder to record a history of actions by the user via the user device, the history 
recorder including a level selector to select a level of the actions to be recorded, wherein: 

the data storage device is arranged to have recorded therein at least a portion of a service 
profile including information regarding what portions of the stored personal data of the user can 
be released to the second party and conditions under which the portions of the service profile can 
be released to the second party. 

46. - 47. (Canceled) 
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48. (Presently Amended): A computer readable medium storing computer executable 
instructions for performing a method for controlling access, use and distribution of personal data 
of a single user stored in a personal repository, comprising the steps of: 

receiving input defining personal data comprising a master profile and-efte-ef^meFe_a 
plurality of service profiles for storage in the personal repository, the master profile and ©ne-or 
mere- plurality of service profiles corresponding to only the single user; 

receiving user input identifying one of the service profiles stored in the personal data 
repository as corresponding to a second party; 

reaching an agreement, between the user and the second party, regarding release to the 
second party of the identified service profile; and 

providing the identified service profile fi-om the personal data repository to the second 
party according to the agreement. 

49. (Previously Presented): The computer readable medium of claim 48, wherein the 
personal data comprises automatically collected information. 

50. (Previously Presented): The computer readable medium of claim 48, wherein the 
step of reaching the agreement comprises choosing an agreement provided by an independent 
agreement provider, wherein the independent agreement provider receives compensation based 
on use of the provided agreement. 

5 1 . (Previously Presented): The computer readable medium of claim 48, wherein the 
personal data comprises information entered by the user. 

52. (Previously Presented): The computer readable medium of claim 48, wherein the 
computer executable instructions fiirther comprise the step of storing the personal data on a 
device operated by the user. 
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53. (Previously Presented): The computer readable medium of claim 48, wherein the 
computer executable instructions ftirther comprise the step of storing the personal data on a 
trusted party device. 

54. (Previously Presented): The computer readable medium of claim 48, wherein the 
computer executable instructions further comprise the step of storing the personal data in a 
distributed manner among a plurality of trusted party devices. 

55. (Previously Presented): The computer readable medium of claim 48, wherein the 
identified service profile comprises music preferences. 

56. (Previously Presented): The computer readable medium of claim 48, wherein the 
second party comprises a financial institution, and wherein the identified service profile 
comprises financial information. 

57. (Previously Presented): The computer readable medium of claim 48, wherein the 
identified service profile includes information regarding a date and a time that any of the 
information in the identified service profile was released to the second party and to whom the 
stored information was released. 

58. (Previously Presented): The computer readable medium of claim 48, wherein the 
identified service profile includes information pertaining to a description of the agreement 
between the user and the second party. 

59. (Previously Presented): The computer readable medium of claim 48, wherein the 
computer executable instructions further comprise the step of acting, by a trusted party, as an 
agent of the user to negotiate use, by the second party, of any of the personal data of the user in 
return for compensation to the user for the use of any of the personal data. 
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60. (Previously Presented): The computer readable medium of claim 49, wherein the 
computer executable instructions further comprise the steps of automatically recording a history 
of actions by the user using a user device, as part of the personal data of the user. 

6 1 . (Previously Presented): The computer readable medium of claim 60, further 
comprising receiving user input defining a type of actions to be automatically recorded. 

62. (Previously Presented): The computer readable medium of claim 48, further 
comprising the steps of: 

receiving, at a trusted party device connected to a computer network, a first request from 
a device operated by the user; 

forming a second request based on the first request, the second request being stripped of 
information that can associate the user with the second request; 

sending, from the trusted party device, the second request over a computer network to a 
second party device; 

receiving, at the trusted party device, response information in response to the sending of 
the second request; 

forming a response based on the response information; and 
sending the response to the device operated by the user. 
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